IBM QRadar Incident Forensics

RATING:

4.7

(3)
Overview

About IBM QRadar Incident Forensics

IBM QRadar Incident Forensics is a digital forensics solution that helps businesses streamline operations related to data collection, rebuilding, analysis, and more on a centralized platform. It enables staff members to gain visibility into the impact of the intrusion by identifying and retracing cyber-criminal actions, preventing incident reoccurrence. IBM QRadar Incident Forensics allows employees to compile evidentiary profiles, rebuild security incident data, and create a step-by-step view of all offenses. It lets supervisors create visualizations to gain insights into digital impressions and extended relationships, based on IP addresses, chat, email, and social media identities. Additionally, IT security teams can collect contextual incident data from log events, ...

IBM QRadar Incident Forensics Pricing

Please contact IBM directly for pricing details

Free trial: 

Not Available

Free version: 

Not Available

IBM QRadar Incident Forensics file details
Slide 1 of 3

IBM QRadar Incident Forensics Reviews

Overall Rating

4.7

Ratings Breakdown

Secondary Ratings

Ease-of-use

4.5

Customer Support

4.5

Value for money

3.5

Functionality

4.5

Most Helpful Reviews for IBM QRadar Incident Forensics

3 Reviews

Anonymous

5,001-10,000 employees

Used daily for less than 12 months

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

5

EASE OF USE

5

VALUE FOR MONEY

4

CUSTOMER SUPPORT

5

FUNCTIONALITY

4

Reviewed August 2022

Digital forensic -Qradar

Different problems in network came daily basis related to incidents but qradar incident forensics helps to create report , remediation steps , evidence etc during critical issue to organization.

PROS

Inspection , case management, and incidents management features helps us to identify the critical threats of network and proactive remediate the issue and aware the user for the malicious malware.

CONS

It's provides the proper document in the IBM academy for learning but creates some incident management vedio and troubleshooting tips vedios with documentation that helps to get better under to administrator .

Reason for choosing IBM QRadar Incident Forensics

It's depend on the organizat budget to manage and what's purpose of the product according to requirement that better , easy to implement and use for network team.

Anmol

Information Technology and Services, 201-500 employees

Used weekly for more than 2 years

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

5

EASE OF USE

5

VALUE FOR MONEY

4

CUSTOMER SUPPORT

5

FUNCTIONALITY

5

Reviewed February 2023

IBM QRadar

PROS

It makes us easy to investigate and check the incident logs from the exploit start and after it .we integrate it with AWS WAF logs and VPC logs and it raised the incident automatically with least human efforts

CONS

There is a delay in logs sync and from source to processing in Qradar.It's not work in real-time it takes a minimum of 5 minutes to investigate it.Integration with real-time stream is not an easy task

Anonymous

201-500 employees

Used daily for more than 2 years

Review Source: Capterra
This reviewer was invited by us to submit an honest review and offered a nominal incentive as a thank you.

OVERALL RATING:

4

EASE OF USE

4

VALUE FOR MONEY

3

CUSTOMER SUPPORT

3

FUNCTIONALITY

5

Reviewed November 2022

Qradar review

PROS

Integrated with different systems, servers, network appliances etc.

CONS

Vulnerability module is not working as expected.

Reasons for switching to IBM QRadar Incident Forensics

Solid regid product.